WRQ Reflection for Secure IT Windows Server 6.0 (formerly known as F-Secure SSH server) does not properly handle when the Windows Administrator or Guest accounts are renamed after SSH key authentication has been configured, which allows remote attackers to use the original names during login.
References
Link | Resource |
---|---|
http://secunia.com/advisories/16649/ | Patch |
http://securitytracker.com/id?1014835 | |
http://support.wrq.com/techdocs/1910.html | |
http://www.kb.cert.org/vuls/id/902110 | Third Party Advisory US Government Resource |
http://secunia.com/advisories/16649/ | Patch |
http://securitytracker.com/id?1014835 | |
http://support.wrq.com/techdocs/1910.html | |
http://www.kb.cert.org/vuls/id/902110 | Third Party Advisory US Government Resource |
Configurations
History
21 Nov 2024, 00:00
Type | Values Removed | Values Added |
---|---|---|
References | () http://secunia.com/advisories/16649/ - Patch | |
References | () http://securitytracker.com/id?1014835 - | |
References | () http://support.wrq.com/techdocs/1910.html - | |
References | () http://www.kb.cert.org/vuls/id/902110 - Third Party Advisory, US Government Resource |
Information
Published : 2005-09-02 23:03
Updated : 2024-11-21 00:00
NVD link : CVE-2005-2770
Mitre link : CVE-2005-2770
CVE.ORG link : CVE-2005-2770
JSON object : View
Products Affected
wrq
- wrq_reflection_for_secure_it_windows_server
CWE